[ubuntu/hirsute-proposed] xdg-utils 1.1.3-2ubuntu2 (Accepted)
Leonidas S. Barbosa
leo.barbosa at canonical.com
Thu Nov 26 19:49:15 UTC 2020
xdg-utils (1.1.3-2ubuntu2) hirsute; urgency=medium
* SECURITY UPDATE: local file inclusion vulnerability
- debian/patches/CVE-2020-27748.patch: remove attachment handling from
mailto in scripts/xdg-email.in.
- CVE-2020-27748
Date: Tue, 24 Nov 2020 14:26:08 -0300
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/xdg-utils/1.1.3-2ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Tue, 24 Nov 2020 14:26:08 -0300
Source: xdg-utils
Architecture: source
Version: 1.1.3-2ubuntu2
Distribution: hirsute
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Leonidas S. Barbosa <leo.barbosa at canonical.com>
Changes:
xdg-utils (1.1.3-2ubuntu2) hirsute; urgency=medium
.
* SECURITY UPDATE: local file inclusion vulnerability
- debian/patches/CVE-2020-27748.patch: remove attachment handling from
mailto in scripts/xdg-email.in.
- CVE-2020-27748
Checksums-Sha1:
8a849b15dd92a6afc2bf439d2a546e97f045ee90 2175 xdg-utils_1.1.3-2ubuntu2.dsc
a3c4eb412c6ba7d0bb86262ed7ea1a6b73a5eab2 12724 xdg-utils_1.1.3-2ubuntu2.debian.tar.xz
d91f99747e118a939e0d509e45efc8306be60a39 6151 xdg-utils_1.1.3-2ubuntu2_source.buildinfo
Checksums-Sha256:
b9a7129aac821a344ab9733979993684a7c473150fc8d0d2070f526ba867396c 2175 xdg-utils_1.1.3-2ubuntu2.dsc
63b40a25c7ceee664413548faf47629e42b755dd4c332970324a2ae4f089a44b 12724 xdg-utils_1.1.3-2ubuntu2.debian.tar.xz
74595900b9961a0ca336443fb83cd520ab05006a377d96eff7cdaeaa2cc1d552 6151 xdg-utils_1.1.3-2ubuntu2_source.buildinfo
Files:
3c0280798c988b4f2a5dcf3a683a3f3e 2175 utils optional xdg-utils_1.1.3-2ubuntu2.dsc
b990ba50a0d5a39c0462ce989b64fe37 12724 utils optional xdg-utils_1.1.3-2ubuntu2.debian.tar.xz
96b16f3f4b211915f8d9f7f4b95b2fab 6151 utils optional xdg-utils_1.1.3-2ubuntu2_source.buildinfo
Original-Maintainer: Debian freedesktop.org maintainers <pkg-freedesktop-maintainers at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----
iQIzBAEBCgAdFiEEUMSg3c8x5FLOsZtRZWnYVadEvpMFAl/ABmEACgkQZWnYVadE
vpNheQ//YWof/FWXsg2qdRTL2iqvjtnRoESxIPRpzhoLB8WDyM1UieFosQdukbDi
s3TMZ1bQSG9360MdsIKMMWyRxTLLiaE9HWHSb0yvhBI7z5M/7iwUaChzpPDrOcd/
06Sk7PqAco/vrUOXXj2ZHoxYBfuQkYUQVKzLTHXAEZq7LEleeTVj2yPT54smJ/gb
1AtVz7zEQN1NLaUXRgRhWh3MpggCnfv/66qjg7+1/bIeBnBCl5OonopBCUm4Tp5d
bsplrpEcK8CotRmsaQ0tToVF48lTckgEru4WMNauGMk5tKCPSCCuIRfF4vtQESPn
eKfuKvLuYENL515Y660Mct884GpUJAoCxqZG+1XkQYfAuSDhbLF05qKQ/0Yc2SvQ
Srn72guLWQBCE9OIO78ZCmnBziPTGHI527tXr+iMG4fvgkdR7FApnpTe+cJuwLRA
3LHaQCxwtfNutjUBNrVV00YOuvw9+dMa2GlvIDlRE/AGvKenvaHjV5lLEUQMjDOK
ZVOssMvz3revzmR0naDi6PAFItpjlBTS7sbVgNF1TlDCQCvhllJzhxTY/MaCMrhx
WWTMAUyw499jY1r8wNVW/Oym3h1lj9ecL8XuYdq5/ua16WIQ+rqMwl+TgrwqsDce
2ZevC06YF6w9LOEivu/LX5c3chant7SUQ6prN0tntgK2VVzojAY=
=XMTF
-----END PGP SIGNATURE-----
More information about the Hirsute-changes
mailing list